About The Position

The Amazon Customer Ecosystems (ACES) team, part of Amazon Cyber Threat Intelligence (ACTI), is responsible for developing actionable intelligence on advanced cyber threats to Amazon ecosystems such as AWS, Ads and LEO their customers. We obtain indicators and other intelligence from a variety of internal and external sources and use that information to develop an understanding of sophisticated actors and their tools, techniques, and procedures (TTPs). We leverage that understanding to proactively identify and mitigate malicious activity. The successful candidate will analyze both attributed and unattributed actor TTPs to generate intelligence and insights into current threats. A deep understanding of current cyber threat actors as well as experience performing question-driven analysis is required. As a Senior Security Intelligence Engineer, you will help enhance our capabilities by identifying new data sources, formulating new analytic techniques, and working across teams to drive their supporting capabilities. You will likewise work to harness expansive data sets and generate actionable and unique insights from them using database querying and statistical analysis. Your efforts will uncover previously-unknown threats and help drive innovation and continual improvement in the "state-of-the-art" of cyber threat intelligence analysis and dissemination at Amazon.

Requirements

  • 5+ years of work in identifying security issues and risks, and developing mitigation plans experience
  • 2+ years of professional work experience, or experience in SQL or other relational databases
  • BS degree in Computer Science, Management of Information Systems (MIS), Computer Engineering, or similar degree, or 5+ years equivalent technology experience without a degree
  • 5 years experience with tracking high-sophistication cyber threat groups
  • 5 years experience across system security, network security, application security, and/or digital forensics
  • 4 years experience building scripting and automation using Python or similar programming languages

Nice To Haves

  • MS degree in Computer Science, Management of Information Systems (MIS), Computer Engineering, or similar degree
  • Strong understanding of Windows, Linux, and or OS X internals
  • Experience with malware analysis, network flow analysis, and large scale data analysis.
  • Experience with modern threat intelligence platforms (TIPs), especially the Vertex Project's Synapse, and their APIs
  • Experience building and conducting analysis leveraging AWS services.
  • Experience building automated tools in the Python programming language.
  • Experience as a mentor, tech lead or leading an engineering team

Responsibilities

  • Perform deep dive analysis of malicious artifacts.
  • Analyze large and unstructured data sets to discover new threats, uncover trends, and identify anomalies indicative of malicious activities.
  • Create security techniques and automation for internal use that enable you and others to operate at high speed and broad scale.
  • Develop and use generative AI and agentic workflows to scale yourself and others' analytical capabilities.
  • Contribute to Amazon's understanding of the current threat landscape and the techniques, tactics, and procedures associated with specific threats.
  • Draft and publish finished written threat intelligence products based on findings.
  • Periodic on-call responsibilities.

Benefits

  • sign-on payments
  • restricted stock units (RSUs)
  • health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage)
  • 401(k) matching
  • paid time off
  • parental leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service